Breaking News – Cyber Threats – 2026-09-15 03:00 PDT
Breaking News – Cyber Threats (last 6h)
Generated: 2026-09-15 03:00 PDT
- Suspected Black Axe gang leaders face cybercrime charges in the US
BleepingComputer • 2026-09-15 02:50 • www.bleepingcomputer.com
Five alleged leaders of the Black Axe cybercrime syndicate, known for its involvement in global-scale cyber-enabled financial fraud, have been extradited to the United States to face wire fraud and money laundering charges. […]
https://www.bleepingcomputer.com/news/security/black-axe-gang-members-extradited-to-us-face-cybercrime-charges/ - Microsoft confirms KB5002914 Excel update breaks copy and paste
BleepingComputer • 2026-09-15 01:40 • www.bleepingcomputer.com
Microsoft has confirmed that copy and paste may silently fail for some Excel users after installing the September 2026 KB5002914 security update. […]
https://www.bleepingcomputer.com/news/microsoft/microsoft-september-kb5002914-security-update-breaks-excel-copy-and-paste/ - Cisco patches Secure Email Gateway zero-day exploited in attacks
BleepingComputer • 2026-09-15 00:31 • www.bleepingcomputer.com
Cisco warned customers to patch a critical Secure Email Gateway zero-day security flaw that threat actors have been exploiting in attacks. […]
https://www.bleepingcomputer.com/news/security/new-cisco-secure-email-zero-day-exploited-to-execute-commands-as-root/ - LiteSpeed Enterprise Flaw Could Let One Hosting Account Gain Root Access on a Shared Server
The Hacker News • 2026-09-14 23:52 • thehackernews.com
A critical vulnerability in LiteSpeed Web Server Enterprise could let a low-privilege website user gain root access on a shared-hosting server, cPanel warned in an advisory published on September 14.On such servers, many customers’ sites run on a single machine, and an attacker with one of those hosting accounts could exploit the flaw to access or alter other sites and the server itself,
https://thehackernews.com/2026/09/litespeed-enterprise-flaw-could-let-one.html - Cisco Secure Email Gateway Flaw Exploited in the Wild, Enables Root Command Execution
The Hacker News • 2026-09-14 23:11 • thehackernews.com
Cisco has warned that a new critical vulnerability impacting AsyncOS Software for Cisco Secure Email Gateway has come under active exploitation in the wild.The vulnerability, tracked as CVE-2026-76461, carries a CVSS score of 9.8 out of a maximum of 10.0. It has been described as a case of insufficient validation in the email parsing logic that could allow an unauthenticated, remote attacker
https://thehackernews.com/2026/09/cisco-secure-email-gateway-flaw.html - China-Linked Hackers Exploit Chrome-Windows Zero-Day Chain to Deploy GRIMWEDGE
The Hacker News • 2026-09-14 22:31 • thehackernews.com
A Chinese threat actor has been attributed to a spear-phishing campaign that exploits recently patched security flaws in Google Chrome and Microsoft Windows to deliver a malicious JavaScript backdoor called GRIMWEDGE.Volexity, which is tracking the threat cluster under the moniker UTA0560, said the activity targeted multiple non-governmental organizations (NGOs) on September 1, 2026.
“The
https://thehackernews.com/2026/09/china-linked-hackers-exploit-chrome.html
Sources: BleepingComputer, The Hacker News, KrebsOnSecurity, SANS ISC, CISA.